A systematic literature review of inference strategies

  • Authors:
  • Philip Woodall;Pearl Brereton

  • Affiliations:
  • Institute for Manufacturing, Department of Engineering, University of Cambridge, Cambridge, CB3 0FS, UK.;School of Computing and Mathematics, Keele University, Keele, Staffordshire, ST5 5BG, UK

  • Venue:
  • International Journal of Information and Computer Security
  • Year:
  • 2010

Quantified Score

Hi-index 0.00

Visualization

Abstract

Access controls are not sufficient to prevent the release of secret information from an information system unless they address the problem of inference. An inference strategy is a method by which a user can infer secret information using the information which they are allowed to access through the access control mechanism. The aim of this paper is to collate and categorise the set of inference strategies in the existing literature. The systematic literature review (SLR) methodology is used to identify and categorise known inference strategies. The SLR search found 63 sources, and 127 inference strategies were extracted from these sources, which have been categorised into 11 different categories. Recording the inference strategy processes has abstracted the detail which ties inference strategies to an information system. Using this abstraction, it should be feasible to determine the level of inference protection offered by information systems in general.